Identifier
|
Related Record |
Severity
|
Date Published
|
Description | Versions Affected |
---|---|---|---|---|---|
CVE-2007-3988 | Medium | Jul 25, 2007 | Session fixation vulnerability in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier allows remote attackers to hijack web sessions by setting t more... |
2.4.6, 2.4.6.2, 2.4
|
|
CVE-2006-0686 | High | Feb 15, 2006 | add_user.php in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier does not check user privileges when adding a new administrative user, which a more... |
2.4.6, 2.4.6.2, 2.4
|
|
CVE-2006-0685 | High | Feb 15, 2006 | The check_login function in login.php in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier does not exit when authentication fails, which allow more... |
2.4.6, 2.4.6.2, 2.4
|
|
CVE-2006-0684 | High | Feb 15, 2006 | change_password.php in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier does not verify the old password when a user changes the password, whi more... |
2.4.6, 2.4.6.2, 2.4
|
|
CVE-2006-0683 | Medium | Feb 15, 2006 | Cross-site scripting (XSS) vulnerability in Virtual Hosting Control System (VHCS) 2.4.7.1 with v.1 patch and earlier allows remote attackers to inject more... |
2.4.6, 2.4.6.2, 2.4
|
|
CVE-2005-3902 | Medium | Nov 29, 2005 | Cross-site scripting (XSS) vulnerability in gui/errordocs/index.php in Virtual Hosting Control System (VHCS) 2.2.0 through 2.4.6.2 allows remote attack more... |
2.4.6, 2.4.6.2, 2.4
|